Israeli researchers discovered the first consensus-level attack on Ethereum
twitter.com
twitter.com
@foldfinance says We have known this to be the case with F2Pool for awhile but flashbots refuses to do anything
See https://nitter.42l.fr/foldfinance/status/1555477252736897024...
@railgun_project says This is a well known drawback of proof-of-work systems that was talked about even before Ethereum was launched. It is inaccurate to say that this is a recent "disclosure"
See https://nitter.42l.fr/railgun_project/status/155556027729019...
@mesquka says Not as big of a discovery as it's made to seem IMO. Essentially just intentionally caused temporary chain forks to gain a competitive mining advantage. Known as an issue in PoW since Bitcoin launch (see any discussion about 'Longest Chain Rule' and things like 'Selfish Mining')
See https://nitter.42l.fr/mesquka/status/1555562671575023618#m
this isn't an inherent weakness of proof-of-work systems, it's a weakness of proof-of-work systems that allow difficulty back-off if a block is not found quickly enough.
It's always been kinda hilarious watching the various crypto factions slapfight and strawman each other to hell and back... ladies, please, you're all awful, each in your own way.
(coming from a person who backs neither and merely follows crypto-tech in order to refute the arguments more accurately)
This has the effect of making it harder for the rest of the network to compete against F2Pool's blocks. In this way, F2Pool can, or so it appears, give itself an advantage while taking zero risk. It would be irrational not to adopt this strategy. The thread doesn't say what happens if the entire network adopts this strategy - maybe it's in the paper...
Harvesting the gamma’s full electron volt right out of the reaction.
We’re still 50+ years away. Nothing in modern technology suggests otherwise.
Science media has to explain why billions are dumped into these programs each year (as though edge science isn’t enough.)
In the meantime, everyone will be happy if we can harvest just enough to make the cost of the exchange worth while. most optimistically through harvesting the heat from a sustained reaction (which is 1000 x less potential).
from the medium post
Can anyone ELI-9 this?
1 - The "difficulty" of mining a block is based on how long it's been since the last block was mined, with a drop off in difficulty at 9 seconds
2 - If two blocks "tie", the the block that was more difficult to mine is the winner, and takes the rewards.
---
So essentially, it's a way of breaking ties in their favor - reliably - by cheating a smidge on the timestamps they send for their blocks.
This section specifies how to adjust the difficulty target for each new block. The optimization (I hesitate to call it an attack) identified in the paper could have been rendered ineffective if rounding down (for division by 2048 and by 9) was delayed until after the multiplication in equation (45), resulting in a much smoother adjustment.
The so-called "yellow paper" sadly lacks a motivation of all the seemingly arbitrary numbers involved.
https://www.blockchain.com/charts/difficulty
https://www.coindesk.com/learn/bitcoin-mining-difficulty-eve...
“…the attack does not entail any behavior which has a non-zero probability of earning less than mining honestly…”
Suppose the difficulty decreased by a lot: at 0:59 it is effectively impossible to mine a block but at 1:00 it is so easy that a speak-and-spell could do it. In that case, it seems like the optimum strategy for a selfish miner would be to try to post-date the timestamp and mine an "easy" block. It would still lose to a legitimately-mined "hard" block, but it would profit in expectation by being the first "easy" block to reach the network.
On the other hand, setting a difficulty schedule such that there is no single optimum timestamp might impose a too-fast decay on difficulty.
> We introduce a novel attack vector on proof-of-work (PoW) cryptocurrencies which relieson timestamp manipulations, instead of traditional ones such as block withholding
But bad news? Your crypto coin has a documented flaw that allows it to be manipulated? Good news for your coin!
I have been hearing this since at least 2019.